2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2483——Eval injection vulnerability in Karrigell before 2.1.8 allows remote attackers to execute arbitrary Python code via modi...
CVE-2005-2488——Cross-site scripting (XSS) vulnerability in Web Content Management News System allows remote attackers to inject arbitra...
CVE-2005-2473——Multiple SQL injection vulnerabilities in ChurchInfo allow remote attackers to execute arbitrary SQL commands via the Pe...
CVE-2005-2472——Multiple buffer overflows in BusinessMail 4.60.00 allow remote attackers to cause a denial of service (application crash...
CVE-2005-2471——pstopnm in netpbm does not properly use the "-dSAFER" option when calling Ghostscript to convert a PostScript file into ...
CVE-2005-2359——The AES-XCBC-MAC algorithm in IPsec in FreeBSD 5.3 and 5.4, when used for authentication without other encryption, uses ...
CVE-2005-1854——Unknown vulnerability in apt-cacher in Debian 3.1, related to "missing input sanitising," allows remote attackers to exe...
CVE-2005-1767——traps.c in the Linux kernel 2.6.x and 2.4.x executes stack segment faults on an exception stack, which allows local user...
CVE-2005-1761——Linux kernel 2.6 and 2.4 on the IA64 architecture allows local users to cause a denial of service (kernel crash) via ptr...
CVE-2005-1268——Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to us...
CVE-2005-1272——Stack-based buffer overflow in the Backup Agent for Microsoft SQL Server in BrightStor ARCserve Backup Agent for SQL Ser...
CVE-2005-2481——ColdFusion Fusebox 4.1.0 allows remote attackers to obtain sensitive information via an invalid fuseaction parameter, wh...
CVE-2005-2480——Cross-site scripting (XSS) vulnerability in ColdFusion Fusebox 4.1.0 allows remote attackers to inject arbitrary web scr...
CVE-2005-2353——run-mozilla.sh in Thunderbird, with debugging enabled, allows local users to create or overwrite arbitrary files via a s...
CVE-2005-2479——Quick 'n Easy FTP Server 3.0 allows remote attackers to cause a denial of service (application crash or CPU consumption)...
CVE-2005-2478——SQL injection vulnerability in SilverNews 2.0.3 allows remote attackers to execute arbitrary SQL commands via the user f...
CVE-2005-2477——shop_display_products.php in Naxtor Shopping Cart 1.0 allows remote attackers to obtain sensitive information via a cat_...
CVE-2005-2476——Cross-site scripting (XSS) vulnerability in lost_passowrd.php in Naxtor Shopping Cart 1.0 allows remote attackers to inj...
CVE-2005-2475——Race condition in Unzip 5.52 allows local users to modify permissions of arbitrary files via a hard link attack on a fil...
CVE-2005-2474——ChurchInfo allows remote attackers to execute obtain sensitive information via the PersonID parameter to (1) PersonView....
CVE-2005-2456MEDIUM5.5Array index overflow in the xfrm_sk_policy_insert function in xfrm_user.c in Linux kernel 2.6 allows local users to caus...
CVE-2005-2453——Cross-site scripting (XSS) vulnerability in NetworkActiv Web Server 1.0, 2.0.0.6, 3.0.1.1, and 3.5.13, and possibly othe...
CVE-2005-2455——Greasemonkey before 0.3.5 allows remote web servers to (1) read arbitrary files via a GET request to a file:// URL in th...
CVE-2005-2441——Multiple cross-site scripting (XSS) vulnerabilities in VBzoom allow remote attackers to inject arbitrary web script and ...
CVE-2005-2439——SQL injection vulnerability in UseBB 0.5.1 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to ex...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now